Configuration example 2

Network requirements

The FW device connects the internal network 4.1.1.0/24 through GigabitEthernet 0/4 and connects the external network through GigabitEthernet 0/1. Configure the FW device to send logs to the syslog server with IP address 192.168.96.15 in the external network.

Figure 108 Network diagram for configuring FW and Firewall Manager

Configuration procedures

Configuring the firewall device

1.Configure interfaces

Select Device Management > Interface, assign the IP address 192.168.250.214/24 to GigabitEthernet 0/1, and add the interface to zone Untrust. Assign the IP address 4.1.1.1/24 to GigabitEthernet 0/4, and add the interface to zone Trust.

Figure 109 Configure interfaces

2.Configure NAT

Select Firewall > NAT Policy > Dynamic NAT, configure dynamic NAT on GigabitEthernet 0/1, referencing ACL 3000 and configuring Easy IP as the address translation mode.

Figure 110 Configure dynamic NAT

101